论文标题

朝向灵活的匿名网络

Towards Flexible Anonymous Networks

论文作者

Rochet, Florentin, Dejaeghere, Jules, Elahi, Tariq

论文摘要

诸如TOR之类的匿名沟通设计对分布式信任的安全性建立了许多志愿者,这是许多志愿者在各种全球位置运行的志愿者。实际上,此分布导致了一个异质网络,其中许多版本的TOR软件共存,每个版本都具有不同的协议功能。由于这种异质性,TOR开发人员采用了前瞻性协议设计作为维持网络可扩展性的策略。该策略旨在确保TOR软件的不同版本没有无法恢复的错误进行交互。在这项工作中,我们施放了通过前向兼容协议注意事项作为基本安全问题来实现的协议公差。我们认为,尽管对开发人员有益,但协议的公差在过去的十五年中导致了对TOR的许多强烈攻击。 为了解决此问题,我们提出了灵活的匿名网络(FAN),这是一种针对基于志愿者的分布式网络的新软件体系结构,它将依赖性从协议公差转移而不失去开发人员确保其软件持续发展的能力。我们i)实例化实施,ii)评估其间接费用,iii)试验Fan的一些好处,以防御今天仍然适用于TOR的严重攻击。

Anonymous Communication designs such as Tor build their security on distributed trust over many volunteers running relays in diverse global locations. In practice, this distribution leads to a heterogeneous network in which many versions of the Tor software co-exist, each with differing sets of protocol features. Because of this heterogeneity, Tor developers employ forward-compatible protocol design as a strategy to maintain network extensibility. This strategy aims to guarantee that different versions of the Tor software interact without unrecoverable errors. In this work, we cast protocol tolerance that is enabled by forward-compatible protocol considerations as a fundamental security issue. We argue that, while being beneficial for the developers, protocol tolerance has resulted in a number of strong attacks against Tor in the past fifteen years. To address this issue, we propose Flexible Anonymous Network (FAN), a new software architecture for volunteer-based distributed networks that shifts the dependence away from protocol tolerance without losing the ability for developers to ensure the continuous evolution of their software. We i) instantiate an implementation, ii) evaluate its overheads and, iii) experiment with several of FAN's benefits to defend against a severe attack still applicable to Tor today.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源